Actively Exploited in the Wild

This vulnerability is being actively exploited in the wild.

JetBrains TeamCity Authentication Bypass Vulnerability Allowing Admin Actions

Vulnerability

An authentication bypass vulnerability has been identified in JetBrains TeamCity versions prior to 2023.11.4. This vulnerability allows users to bypass authentication mechanisms and perform administrative actions within the application.

Impact

Exploitation of this vulnerability could lead to unauthorized administrative access and actions within the TeamCity application.

Remediation

Users can update to JetBrains TeamCity version 2023.11.4 or later to address this vulnerability.

Added: Mar 22, 2026, 9:36 PM
Updated: Mar 22, 2026, 9:36 PM

Vulnerability Rating

Custom Algorithm
spread
5.0
impact
5.0
exploitability
9.1
remediation
7.7
relevance
0.0
threat
9.9
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.